First published: Tue Mar 24 2020(Updated: )
An issue was discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) (Exynos7885, Exynos8895, and Exynos9810 chipsets) software. The Gatekeeper trustlet allows a brute-force attack on the screen lock password. The Samsung ID is SVE-2019-14575 (January 2020).
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Google Android | =8.0 | |
Google Android | =8.1 | |
Google Android | =9.0 | |
Google Android | =10.0 | |
Samsung Exynos 7885 | ||
Samsung Exynos 8895 | ||
Samsung Exynos 9810 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-10849 is an issue discovered on Samsung mobile devices with O(8.x), P(9.0), and Q(10.0) software, which allows a brute-force attack on the screen lock password.
The severity of CVE-2020-10849 is critical, with a severity value of 9.8.
Samsung mobile devices with Exynos7885, Exynos8895, and Exynos9810 chipsets and O(8.x), P(9.0), and Q(10.0) software are affected by CVE-2020-10849.
CVE-2020-10849 can be exploited through a brute-force attack on the screen lock password.
For information on fixes or patches for CVE-2020-10849, please refer to the security update provided by Samsung at https://security.samsungmobile.com/securityUpdate.smsb.